For the second time in less than a week Microsoft is reporting a zero-day flaw in Word.
This flaw currently affects Word 2000, Word 2002, Word 2003 and the Word Viewer 2003. However, Word 2007 is NOT affected.
Secunia is rating this vulnerability as “extremely critical”, so that is never a good sign. It means that hackers are already taking advantage of the unpatched hole.
With “patch Tuesday” only a few hours away, we do not expect Microsoft to release a solution to this vulnerability. Also not expected is a fix for the Microsoft Word vulnerability discovered last week. This means that you should be extremely careful when dealing with a Microsoft Word document until these holes are plugged.